• Resolved catmaniax

    (@catmaniax)


    Hello.

    I’d like to ask you if there’s any way/option to edit or remove the words from the blocked message that says: “Manual block by administrator” or even to do not display a message at all but just show a blank page or redirect to somewhere else.

    Showing that message to a supposed hacker is not a very wise choise in my opinion.

    Please let me know.
    Thanks!

Viewing 15 replies - 1 through 15 (of 15 total)
  • mountainguy2

    (@mountainguy2)

    Indeed, don’t you hate having your website give hackers a nice page full of information? Weird that Wordfence does this. Wordfence has their reasons, I’ll give them that. But indeed it would be wonderful to have a dialog in the Wordfence options that allowed us to set a URL for our own custom block message.

    I’m pretty sure they already have this as a feature request, and there are a few threads here already devoted to the subject of customized block messages, and-or having this as an actual option in Wordfence.

    I constantly customize my block messages, but they get written over by the constant Wordfence updates. Best way to find what to customize is to use your FTP client and do a text string search of the Wordfence folder, which will help you ID which files to customize.

    For mine, I strip out everything except a line of plain text, and suggest the viewer contacts us on Facebook via our Facebook Page, if they are a real human and want legitimate access.

    But it gets discouraging when it gets written over. What we need, is yes, yet another plugin, the “customize Wordfence messages” plugin!

    MTN

    Thread Starter catmaniax

    (@catmaniax)

    Agreed, I hope they see this and hopefully add this feature. I imagine it would not be that hard for them to accomplish.

    Stratosphere

    (@stratosphere)

    I have to agree here too, there should be no information at all on the blocked page, nothing referring to the plugin, or what happened.
    The IP’s that are blocked are for a serious attack or reason, best not to give them the details on why. The less info the better.

    mountainguy2

    (@mountainguy2)

    I thought it might be informative if I shared my customized block message:

    Your access to this site has been limited, you are probably a criminal hacker, so we offer you complete information on why you were blocked, as well as showing you what options we give the site owner just in case you’re making progress violating their privacy.

    Or if nothing else, you can sit at your desk in Kiev and chuckle about the time you’re forcing the site owner to take out of their vacation plans.

    Your access to this service has been temporarily limited. Please try over and over again, so the site owner has fun trying to block your thousands of bandwidth sucking access attempts. If possible, please use a different IP number for each attack so we can quit spending boring time with our families and instead sit at our desks and work on blocking you. (HTTP response code 503)

    Reason: Accessed a banned URL. For some reason we feel this URL is important to ban, or at least it probably looks that way to you the cybercriminal. Thus, be sure to focus on attacking it. Could be it let’s you take part in our $5/year Adsense income!

    Important note for site admins: If you are the administrator of this website note that your access has been limited because you broke one of the Wordjest blocking rules. The reason your access was limited is: “Accessed a banned URL.”. Note we are sure here that you know we’re using Wordjest, again we’re attempting to help you have lots of information about our website, to make it easier for you to compromise our privacy and security.

    If this is a false positive, meaning that your access to your own site has been limited incorrectly, then you will need to regain access to your site, go to the Wordjest “options” page, go to the section for Rate Limiting Rules and disable the rule that caused you to be blocked.

    I you desire to compromise this website, and can gain credential access, the above reminds you that the first thing you’ll want to do is disable all the Wordjest rules. That’ll make it easier for you going forward!

    For example, if you were blocked because it was detected that you are a fake Google crawler, now you know your attempt at being a fake Google crawler did not work, so get on the case and figure out a better way to fake your way in!

    Or if you were blocked because you were accessing your site too quickly, then decrease the frequency of your attacks. In fact, if you spend some time experimenting you can easily bypass the site owner’s meager attempts at rate limiting, now that you know through the friendly Wordjest block message that that’s why you got blocked.

    If you’re still having trouble, then simply disable the Wordjest advanced blocking and you will still benefit from the other security features that Wordjest provides. And if you’re a hacker, note that if you mess around enough, you might inspire the website owner to disable their advanced blocked, yipee! Time to play!

    If you are a site administrator and have been accidentally locked out, please enter your email in the box below and click “Send”. If you are a hacker, please use this email dialog as a possible way of hammering an email server with spam.

    If the email address you enter belongs to a known site administrator or someone set to receive Wordjest alerts, we will send you an email to help you regain access. Please read this FAQ entry if this does not work. And if you’re a criminal, this FAQ is incredibly useful, study it like you would study a United States Federal indictment, as fooling around with it just might lead you to that fun event in life. Though you will also need to study extradition treaties and examine where you choose to live.

    Send me an unlock email. If you’re a criminal, spend some time on trying to compromise this, or use it for phishing.

    Last, if you’re trying to compromise this website and you’re tired of seeing this lengthy and useful message, please contact Wordjest and beg them to include a custom block message option in their software. Or better, please thank us at Wordjest for giving you so much information, that $5/year from Adsense buys a lot of vodka!

    Generated by Wordjest at Sun, 30 Apr 2017 19:17:08 GMT.
    Your computer’s time: Sun, 30 Apr 2017 19:27:05 GMT.

    Stratosphere

    (@stratosphere)

    Mountainguy, that’s the funniest blocked page I have ever read. Had me in stitches. Wordfence people – take note of this and adopt accordingly.

    mountainguy2

    (@mountainguy2)

    Indeed, I finally got so annoyed the only outlet was sarcasm, glad you enjoyed. The country blocking in P version already allows for a customized message, all they have to do is implement that same functionality for the other types of blocking.

    My real customized block message reads something like this, with the Facebook mention linked to our FB page:

    You have been blocked by our security software, if you require legitimate access to our website please contact us using Facebook and we will provide you with access.

    Thread Starter catmaniax

    (@catmaniax)

    Can you please share the way you edit and replace the blocked message?

    mountainguy2

    (@mountainguy2)

    Hi, try doing a forum search with words “block message.” It’s done by editing one or possibly several of the Wordfence theme files. Before you start, be sure you have a way of testing, for example using a VPN so you can trigger a block while you are browsing from a throw-away IP number.

    I use an FTP client to search for text strings in the block message I want to customize. Once the file is known, I edit and upload using the text editor in my FTP client, and of course keep backups.

    That said, Wordfence updates so often it gets frustrating trying to keep a custom block message going, keep that in mind. I keep a backup copy of my custom message in my Wordfence theme folder, and re-do when I have time, but it’s getting tiresome.

    mountainguy2

    (@mountainguy2)

    No need to wonder, they have limited time and this is an old issue. If you purchase the Premium version you can use their tech support, in my experience they are very helpful there and answer immediately. I appreciate that as those of us paying for Premium are financing the free forums and free software, and thus deserve special treatment.

    Thread Starter catmaniax

    (@catmaniax)

    Well, I’ve been using Premium myself too for a year but it has expired a couple of days ago, so I’m back to the free version, at least for now.

    mountainguy2

    (@mountainguy2)

    Well, time to renew! Someone has to pay these guys for all this “free” stuff.

    wfyann

    (@wfyann)

    Hi @catmaniax,

    Sorry about the delayed response.

    We don’t have a feature to customize block messages at the moment; this may be implemented in a future version but it hasn’t been included in any roadmap yet.

    Please have a look at this thread which discusses the topic.

    mountainguy2

    (@mountainguy2)

    BTW, I’ve looked into doing this programmatically, I’m thinking the solution is a cronjob that runs a simple PHP script once every few days or so, that copies the modified Block Message file over the Wordfence existing core file. I’ve set up this sort of thing before, it’s not that hard, just takes some time. If I come up with something I’ll start a new thread. MTN

    Thread Starter catmaniax

    (@catmaniax)

    The IP Geo Block plugin seems to be a good alternative to block countries, since you can modify the message as well. It also works well with Wordfence I think.

    mountainguy2

    (@mountainguy2)

    IQ Block Country works as well, in my experience. Correction, in WordPress Premium you can indeed have a custom landing page for country blocked IPs. That’s how I have it set up. I’m on a mission to use fewer plugins, so I appreciate the built-in country blocking of Wordfence P. MTN

Viewing 15 replies - 1 through 15 (of 15 total)

The topic ‘Change Blocked Message!’ is closed to new replies.